First published: Mon Mar 05 2018(Updated: )
Huawei VP9660 V500R002C10 has a uncontrolled format string vulnerability when the license module output the log information. An authenticated local attacker could exploit this vulnerability to cause a denial of service.
Credit: psirt@huawei.com
Affected Software | Affected Version | How to fix |
---|---|---|
Huawei Vp9660 Firmware | =v500r002c10 | |
Huawei VP9660 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-17132 is a vulnerability found in Huawei VP9660 V500R002C10 that allows an authenticated local attacker to cause a denial of service.
The vulnerability occurs when the license module of Huawei VP9660 V500R002C10 outputs log information with an uncontrolled format string.
CVE-2017-17132 has a severity rating of 5.5 (medium).
An authenticated local attacker can exploit CVE-2017-17132 to cause a denial of service.
Yes, Huawei VP9660 Firmware v500r002c10 is affected by CVE-2017-17132.